<VirtualHost *:80>
  ServerName dl.fedoraproject.org
  ServerAlias archive.fedoraproject.org archives.fedoraproject.org secondary.fedoraproject.org download-ib01.fedoraproject.org
  ServerAdmin webmaster@fedoraproject.org
  TraceEnable Off


  Include "conf.d/dl.fedoraproject.org/*.conf"
</VirtualHost>

<VirtualHost *:443>
  ServerName dl.fedoraproject.org
  ServerAlias archive.fedoraproject.org archives.fedoraproject.org secondary.fedoraproject.org download-ib01.fedoraproject.org
  ServerAdmin webmaster@fedoraproject.org


  SSLEngine on
  SSLCertificateFile /etc/pki/tls/certs/{{ wildcard_crt_file }}
  SSLCertificateKeyFile /etc/pki/tls/private/{{ wildcard_key_file }}
  SSLCertificateChainFile /etc/pki/tls/certs/{{ wildcard_int_file }}
  SSLHonorCipherOrder On

  # https://fedorahosted.org/fedora-infrastructure/ticket/4101#comment:14
  # If you change the protocols or cipher suites, you should probably update
  # modules/squid/files/squid.conf-el6 too, to keep it in sync.

   SSLProtocol {{ ssl_protocols }}
   SSLCipherSuite {{ ssl_ciphers }}

  Include "conf.d/dl.fedoraproject.org/*.conf"
</VirtualHost>
